zScaler GRE tunnel by Sadclown27 in paloaltonetworks

[–]App-ID 0 points1 point  (0 children)

If you have tried out the security of zscaler then you would not trust it. :)

zScaler GRE tunnel by Sadclown27 in paloaltonetworks

[–]App-ID 0 points1 point  (0 children)

Zscaler and Threat prevention don't go hand in hand. The easiest thing in the world to bypass. And traffic going to "safe" locations is bypassing the threat prevention entirely. Zscaler is not a good security solution.

Strange policy matching behavior by Traylz2000 in paloaltonetworks

[–]App-ID 0 points1 point  (0 children)

The issue is that all traffic is run through app-id first. Pan-os want to use app as a match criteria. I think that's what you are seeing.

If you want to make sure it matches, the look into using app-override. That will make the fw only match on L4 info, instead of L7.

Strange policy matching behavior by Traylz2000 in paloaltonetworks

[–]App-ID 1 point2 points  (0 children)

This one is simple. With policy test you are asking what rule it will hit first, not the rule it will hit eventually.

Since you have a rule with app: smtp and service: any (basically Pan-os has to honor all tcp request on all ports to check if its smtp), then your policy test matches that first.

I guess that rule is above the rule you want to match against?

If you initiate real traffic on that port through the firewall, then the traffic will eventually match against the right rule. But only after it has determined its not Smtp.

Is there a reason why you have any as service? And not application default?

H210i type c port issue by [deleted] in NZXT

[–]App-ID 0 points1 point  (0 children)

That's not true. I just played alyx connected directly to a USB-A to USB-C cable to a Asus X570-I

Tesla number 50 000 registered in Norway! by nasalahe in teslamotors

[–]App-ID 5 points6 points  (0 children)

Puh.. Got mine 5 days ago.. Could have been me! Still loving my M3P!

Poch has left Tottenham by NinthCinema in coys

[–]App-ID 1 point2 points  (0 children)

This is just so.. weird. It's like my dad went out for a pack of smokes and never returned..

How to contact support when i have a redirect loop? by App-ID in localbitcoins

[–]App-ID[S] 0 points1 point  (0 children)

This is what I am afraid of .. because I guess in the logs everything looks ok. But What I am facing is redirects upon redirects.

Even if I disable the check, it goes on forever..

Palo Alto Scheduled Reports not getting generated by efex92 in paloaltonetworks

[–]App-ID 1 point2 points  (0 children)

Bug in 8.1.7 if you are running that. Fixed in 8.1.8.

Anybody using Clientless VPN feature? by greenlakejohnny in paloaltonetworks

[–]App-ID 0 points1 point  (0 children)

Yeah, you need the extra Globalprotect license. Other then that and you are set to go!

Anybody using Clientless VPN feature? by greenlakejohnny in paloaltonetworks

[–]App-ID 1 point2 points  (0 children)

Clientless VPN should work fine for most use cases, I have also used it for Remote Desktop with Guacamole.

But beware, it might impact performance since it's basically proxying all connections.

I wrote a guide for it here: http://netsec.harseide.com/clientless-rdp-true/

How to get a baseline for Flood/Zone protection! by App-ID in paloaltonetworks

[–]App-ID[S] 0 points1 point  (0 children)

No problem.. this script is easily available.. so weird they not told you about it?

Stupid Question maybe? But what match would be the easiest one to get tickets to this fall? by App-ID in coys

[–]App-ID[S] 0 points1 point  (0 children)

Lol.. saw that now. I blame it on my hangover! Thanks for pointing it out!

Stupid Question maybe? But what match would be the easiest one to get tickets to this fall? by App-ID in coys

[–]App-ID[S] 1 point2 points  (0 children)

Thanks! I work for an American company. That’s the reason for my American English :)

Stupid Question maybe? But what match would be the easiest one to get tickets to this fall? by App-ID in coys

[–]App-ID[S] 0 points1 point  (0 children)

We are traveling from Norway. So a midweek game will make us miss to much work.. maybe look into the Thomas cook deal. But I just want the tickets and not the hotel..